Federal SOC Engineer Detect and Respond Analyst (US Citizen
Listed on 2026-08-02
-
IT/Tech
Cybersecurity, Security Management & Operations, Systems Engineer, Information Security & Data Protection
Description
Title:SOC Engineer Detect & Respond Analyst
Location:
Remote-US
Salary: $125,000
About PSIWe are PSI Services. We power world leading tests. Delivered with trusted science and the very best test taker experience. PSI supports test‑takers on their journey to pursuing dreams and gaining certifications that are important to them. They believe that their dreams are worth working for; that their dreams are worth the effort. And we believe that too. This is our core purpose, to empower people to achieve their dreams.
We do this by being the best provider of workforce solutions, which foster both technology and science to deliver the best solutions for our test takers.
We are searching for top talent to join our PSI team and help grow our products and services. We have a creative, supportive and inclusive culture where we empower people in their careers to be their authentic self and make the most of their great talent.
At PSI, we are committed to helping people meet their potential and we believe that promoting diversity, equity and inclusion is critical to our success. That’s why you’ll find these ideals are intrinsic to our company culture and applied throughout the employee lifecycle.
Learn more about what we do at:
About the RoleThe SOC Engineer Detect and Respond Analyst is responsible for designing, implementing, and operating PSI’s security infrastructure while actively monitoring, detecting, and responding to security threats across the enterprise. This hybrid role combines engineering ownership of security platforms with hands‑on SOC operations, ensuring that systems are not only secure by design but continuously monitored and defended.
This role partners with senior management, business units, and technology teams to build scalable security solutions and maintain a strong operational security posture aligned with ISO 27001, NIST, CIS, SOC 2, and FedRAMP standards. The individual operates as both a technical leader for security tooling and a front‑line responder for security incidents, bridging the gap between engineering and operations.
The SOC Engineer Detect and Respond Analyst works within a global team to design, implement, tune, and monitor security controls, improve detection capabilities, and respond to evolving cyber threats.
Role Responsibilities Security Engineering & Platform Ownership- Lead projects to evaluate, select, implement, and optimize security technologies
- Design, configure, implement, and maintain enterprise security platforms:
- SIEM and log aggregation solutions
- EDR/XDR (Crowd Strike)
- Email security (Proofpoint or equivalent)
- Firewalls, IDS/IPS, DLP, and vulnerability management tools
- Develop and tune detection rules, correlation logic, and alerting within SIEM and EDR platforms
- Integrate cloud (AWS/Azure) telemetry and security controls into centralized monitoring
- Maintain and enhance security logging architecture across infrastructure and applications
- Ensure systems are hardened and aligned with CIS benchmarks and DISA STIGs
- Participate in architecture reviews for on‑prem and cloud solutions
- Automate security processes using scripting (Power Shell, etc.)
- Monitor security alerts, logs, and events to identify potential threats and anomalies
- Perform tier 2/3 incident analysis, including investigation, containment, eradication, and recovery
- Conduct root cause analysis and develop remediation recommendations
- Perform threat hunting based on attacker TTPs and emerging intelligence
- Enrich alerts with contextual data from multiple sources (SIEM, EDR, threat intel)
- Maintain and improve SOC playbooks and response procedures
- Participate in on‑call rotation and incident response activities
- Ensure adherence to ISO 27001, NIST, SOC2, CIS, and FedRAMP controls
- Support audits by providing evidence of monitoring, detection, and response capabilities
- Define and maintain technical security standards and runbooks
- Maintain accurate and up‑to‑date documentation of security architecture and processes
- Report on SOC metrics (MTTD, MTTR, incident trends, detection coverage
- US Citizenship required…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).